Canonical

Ubuntu Linux

4106 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Warnung
  • EPSS 92.96%
  • Veröffentlicht 19.10.2011 21:55:01
  • Zuletzt bearbeitet 22.10.2025 01:15:41

Unspecified vulnerability in the Java Runtime Environment component in Oracle Java SE JDK and JRE 7 and 6 Update 27 and earlier allows remote untrusted Java Web Start applications and untrusted Java applets to affect confidentiality, integrity, and a...

Exploit
  • EPSS 7.25%
  • Veröffentlicht 10.10.2011 10:55:05
  • Zuletzt bearbeitet 11.04.2025 00:51:21

net/core/net_namespace.c in the Linux kernel 2.6.32 and earlier does not properly handle a high rate of creation and cleanup of network namespaces, which makes it easier for remote attackers to cause a denial of service (memory consumption) via reque...

  • EPSS 3.8%
  • Veröffentlicht 06.09.2011 19:55:03
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The SSL protocol, as used in certain configurations in Microsoft Windows and Microsoft Internet Explorer, Mozilla Firefox, Google Chrome, Opera, and other products, encrypts data by using CBC mode with chained initialization vectors, which allows man...

Exploit
  • EPSS 92.7%
  • Veröffentlicht 29.08.2011 15:55:02
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The byterange filter in the Apache HTTP Server 1.3.x, 2.0.x through 2.0.64, and 2.2.x through 2.2.19 allows remote attackers to cause a denial of service (memory and CPU consumption) via a Range header that expresses multiple overlapping ranges, as e...

  • EPSS 87.79%
  • Veröffentlicht 15.08.2011 21:55:02
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The server in ISC DHCP 3.x and 4.x before 4.2.2, 3.1-ESV before 3.1-ESV-R3, and 4.1-ESV before 4.1-ESV-R3 allows remote attackers to cause a denial of service (daemon exit) via a crafted DHCP packet.

  • EPSS 75.34%
  • Veröffentlicht 15.08.2011 21:55:02
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The server in ISC DHCP 3.x and 4.x before 4.2.2, 3.1-ESV before 3.1-ESV-R3, and 4.1-ESV before 4.1-ESV-R3 allows remote attackers to cause a denial of service (daemon exit) via a crafted BOOTP packet.

Exploit
  • EPSS 19.24%
  • Veröffentlicht 29.07.2011 20:55:02
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Multiple cross-site request forgery (CSRF) vulnerabilities in the Samba Web Administration Tool (SWAT) in Samba 3.x before 3.5.10 allow remote attackers to hijack the authentication of administrators for requests that (1) shut down daemons, (2) start...

  • EPSS 3.13%
  • Veröffentlicht 29.07.2011 20:55:02
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Cross-site scripting (XSS) vulnerability in the chg_passwd function in web/swat.c in the Samba Web Administration Tool (SWAT) in Samba 3.x before 3.5.10 allows remote authenticated administrators to inject arbitrary web script or HTML via the usernam...

  • EPSS 0.18%
  • Veröffentlicht 27.07.2011 02:55:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

APT before 0.8.15.2 does not properly validate inline GPG signatures, which allows man-in-the-middle attackers to install modified packages via vectors involving lack of an initial clearsigned message.

  • EPSS 0.05%
  • Veröffentlicht 18.07.2011 19:55:00
  • Zuletzt bearbeitet 11.04.2025 00:51:21

net/core/ethtool.c in the Linux kernel before 2.6.36 does not initialize certain data structures, which allows local users to obtain potentially sensitive information from kernel heap memory by leveraging the CAP_NET_ADMIN capability for an ethtool i...